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Abstract 

This paper proves that classical-witness quantum Merlin-Arthur proof systems can achieve perfect com- 
pleteness. That is, QCMA = QCMA^ This holds under any gate set with which the Hadamard and arbitrary 
classical reversible transformations can be exactly implemented, e.g., {Hadamard, Toffoli, NOT}. The proof is 
quantumly nonrelativizing, and uses a simple but novel quantum technique that additively adjusts the success 
■ probability, which may be of independent interest. 
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1 Introduction 



QCMA (also called MQA IWat09allGSTJTTl ') was first formall>Q defined by Aharonov and Naveh HAN021 as the 
class of decision problems whose solutions (given as classical bit strings) can be efficiently verified by a quan- 
tum computer. The letters "MA" stand for Merlin-Arthur, as the complexity class is motivated by the following 
protocol. A bit string w (the purported witness) is provided by a computationally unbounded but untrustworthy 
prover (Merlin) to a verifier with only polynomial resources (Arthur). The verification procedure of the verifier is a 
polynomial time quantum computation while the witness w is a classical bit string. If the verifier is a polynomial- 
time classical computer, then the resulting class is called MA [Bab85 ( BM88 ]. If the verifier and witness are both 
quantum, that is, w is an arbitrary quantum state, the resulting complexity class is called QMA [WatOO ] (originally 
called BQNP lfKit99llKSV02l ). 

The standard way of defining these complexity classes allows two-sided bounded error: Arthur may wrongly 
reject each yes-instance with small probability (completeness error), and may also wrongly accept each no-instance 
with small probability (soundness error). If Arthur never wrongly rejects yes-instances, the system is said to have 
perfect completeness. The versions of QMA, QCMA, and MA with perfect completeness are denoted QMA X , 
QCMA l5 and MAi, respectively. 

One of the important open problems in quantum Merlin-Arthur proofs (both in the QCMA case and in the 
QMA case) is whether the class defined with two-sided error equals that with perfect completeness. A proof that 
QMA = QMA X would be particularly interesting, as the problem of deciding whether a Hamiltonian is frustrated 
is QMA r complete MBra061 . Classically, it is known that MA = MA X due to Zachos and Fiirer RZF87I1 (Goldre- 
ich and Zuckerman [GZ1 1 ] provided an alternative proof of this). More generally, it is known that perfect complete- 
ness is achievable in various models of quantum and classical interactive proof systems [ZF87, GMS87, FGM + 89, 
IBOGKW881 IKW001 IMW051 IKKMV091 In contrast, Aaronson MAar091 presented a quantum oracle relative to 
which QMA X is a proper subclass of QMA. This implies that any proof of QMA = QMA X must be quantumly 
nonrelativizing. Aaronson's oracle also separates QCMA from QCMA X since in fact he showed a quantum oracle 
relative to which BQP is not contained in the exponential-time analogue of QMA X . He suggested that the result 
(and the proof) in Ref. MAar091 implies that any proof of QMA = QMA X (and also QCMA = QCMA X ) requires 
some technique of explicitly representing (probability) amplitudes that appear in quantum states or evolutions. 

This paper shows that demanding perfect completeness does not weaken the power of QCMA proof systems 
under a reasonable assumption on the gate set. Specifically, assuming that Hadamard transformations and all clas- 
sical reversible transformations can be exactly implemented, QCMA = QCMA X . To the best of our knowledge, 
this is the first "nontrivial" example that overcomes a quantum oracle separation (except quantumly nonrelativizing 
"trivial" containments such as BQP C ZQEXP as found in Ref. HAar09in . Our proof of QCMA = QCMA X is 
nonrelativizing since our technique also utilizes an explicit representation of amplitudes. This suggests that the 
oracle separation of Ref. [Aar09] may not be an insurmountable barrier to proving QMA = QMA X . We hope that 
our proof may provide guidance on approaching the longstanding QMA versus QMA X problem, and on developing 
quantumly nonrelativizing techniques in general. It is also interesting to note that, as a corollary of our result, the 
solutions to the known QCMA-complete problems [WJB03 ] can be verified with perfect completeness. 

Our basic strategy to prove QCMA = QCMA X is very simple: Given any QCMA proof system with two- 
sided error, one considers letting Arthur receive a description of the acceptance probability in addition to the 
original classical witness. This allows Arthur to adjust the acceptance probability by standard exact amplitude 
amplification [BHMT02, CK98] or Watrous's quantum rewinding [Wat09b|. One obvious problem in this approach 
is that the original acceptance probability might not be expressible exactly with polynomially many bits. This can 
be overcome by making use of the robustness of the two-sided error complexity class QCMA against the choice 
of gate set. Specifically, one can assume without loss of generality that the verification procedure of the original 
two-sided error QCMA system is implemented only with Hadamard, Toffoli, and NOT gates [Shi02 , Aha03 |. This 

1 The general notion of nondeterminism in quantum computation originates much earlier due to Knill |Kni96|. 
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ensures that any possible acceptance probability on input x in this system is exactly equal to k/2 l ^ x ^ for some 
integer k and some polynomially bounded, integer- valued function I. 

Another problem, which is more difficult to overcome, is that Arthur may not be able to appropriately adjust 
the acceptance probability without error, even if he knows the original acceptance probability The standard way to 
adjust success probability in exact amplitude amplification is a "multiplicative" method that applies some suitable 
rotation operator. This rotation depends on the input length, and cannot be exactly implemented with a fixed finite 
gate set in general. We overcome this difficulty by introducing a simple but novel "additive" method of adjusting 
the acceptance probability. The goal is to have a base procedure whose initial acceptance probability is exactly 1/2, 
which leads to a protocol with perfect completeness via Watrous's quantum rewinding. (The choice of quantum 
rewinding rather than exact amplitude amplification is just for ease of analysis, and is not essential.) 

On input x, Arthur receives as a witness a string w and an integer k, written using l(\x\) bits, where w is 
expected to be the witness he would receive in the original system, and k is expected such that k/2 l ^ x ^ equals 
the acceptance probability p X;W on input x and witness w in the original system. If the claimed k is too small 
relative to the value computed from the original completeness condition, Arthur rejects. Otherwise Arthur performs 
with equal amplitude the original verification test and an additional second test, where Arthur generates a uniform 
superposition of values from 1 to 2 l ^ x ^ and simply accepts if this value is more than k. Notice that this second test is 
exactly implementable only with the Hadamard and classical reversible transformations. Clearly, the honest Merlin 
can prepare some suitable pair (w, k) with which Arthur accepts with probability p X)W in the original verification 
test and with probability 1 — k/2 l ^ x ^ = 1 — p X}W in the second test. Hence, this base procedure has its initial 
success probability exactly 1/2 for yes-instances, and one can construct a system of perfect completeness via 
quantum rewinding, similar to the case of quantum multi-prover interactive proofs [KKMV09]. For a dishonest 
Merlin, any possible w must have a small p XM value while k must be such that the value k/2 l ^ x ^ is large, and 
thus, whichever pair (w, k) is prepared, the initial success probability of the base procedure must be less than 1/2, 
which ensures soundness. To the best of our knowledge, no such "additive" method of amplitude adjustment has 
appeared in the literature previously, and we believe it may have other applications in quantum complexity theory. 

2 Preliminaries 

We assume the reader is familiar with the quantum formalism, in particular the quantum circuit model (see 
Refs. MNC001 IKSV02L for instance). Throughout this paper, let N and Z + denote the sets of positive and non- 
negative integers, respectively. A function / : Z + — > N is polynomially bounded if there exists a polynomial-time 
deterministic Turing machine that outputs l/W on input l n . A function /: Z + — > [0, 1] is negligible if, for every 
polynomially bounded function g: Z + — > N, it holds that f(n) < l/g(n) for all but finitely many values of n. 

For a quantum register R, let |0)r denote the state in which all the qubits in R are in state |0). In this paper, all 
Hilbert spaces have dimension a power of two. 

Polynomial-Time Uniformly Generated Families of Quantum Circuits Following conventions, we define 
quantum Merlin-Arthur proof systems in terms of quantum circuits. In particular, we use the following notion 
of polynomial-time uniformly generated families of quantum circuits. 

A family {Q x } of quantum circuits is polynomial-time uniformly generated if there exists a deterministic pro- 
cedure that, on every input x, outputs a description of Q x and runs in time polynomial in |sc|. It is assumed that 
the circuits in such a family are composed of gates in some reasonable, universal, finite set of quantum gates. Fur- 
thermore, it is assumed that the number of gates in any circuit is not more than the length of the description of that 
circuit. Therefore Q x must have size polynomial in \x\. For convenience, we may identify a circuit Q x with the 
unitary operator it induces. 

Throughout this paper, we assume a gate set with which the Hadamard and any classical reversible transfor- 
mations can be exactly implemented. Note that this assumption is satisfied by many standard gate sets such as the 
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Shor basis [ Sho96 ] consisting of the Hadamard, controlled-i-phase-shift, and Toffoli gates, and the one consisting 
of the Hadamard and Toffoli gates HShi021 IAhaQ3B . Hence we believe that our condition is reasonable and not 
restrictive. For concreteness, we may assume the specific gate set {Hadamard, Toffoli, NOT} for both the original 
QCMA verifer and our corresponding QCMA X verifier. Note that, although {Hadamard, Toffoli} is computation- 
ally universal [Shi02 , Aha03 ] given a supply of both |0) and 1 1) ancilla qubits, we include the NOT gate because we 
assume the verifier receives all qubits initialized to |0). The witness string w is hardcoded into the verifier circuit 
V X;W by initial NOT gates acting on each witness bit whose value should be 1 . 

Since non-unitary and unitary quantum circuits are equivalent in computational power [AKN98], it is suffi- 
cient to treat only unitary quantum circuits, which justifies the above definition. However, we describe our veri- 
fication procedure using intermediate projective measurements in the computational basis and unitary operations 
conditioned on the outcome of the measurements. If we wished, we could defer all of the measurements of the 
verification procedure to the end of the computation, along the lines described on page 186 of Ref. [NCOO]. 

More specifically, one sees from Figure [T] in the next section that our verification procedure involves Boolean- 
outcome measurements at Steps 1, 3.1, and 3.5. Let b±, 63.1, and 63.5 denote the outcomes of these measurements. 
Final acceptance occurs if 

-61 A (63.1 V 63.5) (1) 

evaluates to true. This can be determined unitarily using Toffoli gates, as they can perform universal classical 
computation. One may worry that exact unitary implementation of the conditional operations would require the 
addition of conditional-Hadamard to our gate set. However, the operations in Steps 2 and 3 which, for conceptual 
clarity, we describe as being performed only under certain measurement outcomes, can in fact be performed un- 
conditionally without affecting final acceptance. By construction, the formula (Q~|) simply ignores the outcomes of 
these steps in the cases that they are irrelevant. 

Classical- Witness Quantum Merlin-Arthur Proof Systems This paper discusses the power of quantum Merlin- 
Arthur proof systems where Merlin sends a classical witness to Arthur, which we call QCMA proof systems. 

Formally, the class QCMA(c, s) of problems having such systems with completeness c and soundness s is de- 
fined as follows. For generality, we use promise problems [ESY84] rather than languages when defining complexity 
classes. 

Definition 1. Given functions c, s: Z + — > [0,1], a promise problem A = (Ay es ,^4 no ) is in QCMA(c, s) iff 
there exists a polynomially bounded function m : Z + — >• N and a polynomial-time quantum verifier V, who is a 
polynomial-time uniformly generated family of quantum circuits {V XtW } xe r j,* Wg / Q ^moi), such that, for every 
input x: 

(Completeness) if x G A yes , there exists a witness w G {0, l} m (l x D with which V accepts x (i.e., the measurement 
on the output qubit of V XjW results in |1)) with probability at least c(|x|), 

(Soundness) if x G A no , for any witness w' G {0, l} m (l 2 D given, V accepts x with probability at most s(|x|). 

The complexity class QCMA is defined as follows. 

Definition 2. A promise problem A = (A yes , A no ) is in QCMA iff A is in QCMA(1 — e, e) for some negligible 
functions: Z+ -»■ [0,1]. 

Similarly, the class QCMA X is defined as follows. 

Definition 3. A promise problem A = {A yes ,A no ) is in QCMA X iff A is in QCMA(l,e) for some negligible 
function e: Z+ [0,1]. 

Note that QCMA = QCMA(2/3, 1/3) and QCMA : = QCMA(1, 1/2), since the gap between completeness 
and soundness can be amplified exponentially by repeating the verification procedure. 
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3 Result 



Now we show that any QCMA proof system with two-sided error can be converted into another QCMA proof 
system with perfect completeness. 

Theorem 4. QCMA = QCMA X . 

In fact, we show a more general theorem stated below. Theorem|4]is an immediate corollary. 

Theorem 5. For any polynomial-time computable function c: Z + — > [0, 1] and any function s : Z + — > [0, 1] satis- 
fying c — s > 1/qfor some polynomially bounded function q : Z + — >• N, H 

QCMA(c,s) C QCMA(l,s'), 

where s' = |(l - (c - s)) (l + (1 + c - s) 2 ) < 1. 

By taking c = 2/3 and s = 1/3, Theorem implies QCMA(2/3, 1/3) C QCMA(1, 25/27), which is suffi- 
cient to obtain Theorem |4] 

The rest of this section is devoted to the proof of Theorem [5] 

Proof of Theorem\5\ Let A = (A yes ,A no ) be in QCMA(c, s) and let V be the verifier of the corresponding QCMA 
system. Consider the quantum circuit V XjW of V when the input is x and the received witness is w of m(|x|) bits, for 
some polynomially bounded function m: Z + — > N. Without loss of generality, by Refs. [Aha03 ( Shi02], one can 
assume that V x , w consists of only the Hadamard, Toffoli, and NOT gates, and the output is obtained by measuring 
the designated output qubit in the computational basis. Therefore, the acceptance probability of V x>w is exactly 
expressible as k XjW /2 1 ^' for some integer k X}W in {0,1,..., 2'd x D}, where I : Z + — > N is a polynomially bounded 
function such that l(\x\) denotes the size of the circuit V XjW . 

We construct a new verifier W assuring that A is in QCMA(1, s'). Let R be the quantum register consisting of 
all the qubits used by V w>x . The verifier W uses three more quantum registers B, 0, and S in addition to R, where 
B and are single-qubit registers, and S is a quantum register of l(\x\) qubits. All the qubits in these four registers 
are initialized to 1 0) . The qubit in is designated as the output qubit in the constructed system. As a witness, W 
receives binary strings w and k, where w is expected to be the witness V would receive in the original system, and 
k is an /(|x|)-bit string that identifies a positive integer in {1, ... , 2 / (l x l)} that is expected to be k x , w . Here notice 
that we are considering a natural one-to-one correspondence between /(|x|)-bit strings and integers from 1 to 2 l ^ x ^ 
(rather than from to 2 l ^ x ^ — 1), for k XyW cannot be zero but can be 2 1< ^ X ^ in the yes-instance case. W immediately 
rejects if k viewed as an integer is less than c(\x\) ■ 2 l ^ x ^. 

Then W applies the Hadamard transformations over all qubits in registers B and S, and applies the original 
verification circuit V x>w over the qubits in R. W accepts either when B contains and the content of R would result 
in acceptance in the original system, or when B contains 1 and the content of S viewed as an integer expressed by 
an /(|x|)-bit string is greater than k (the qubit in O, which is the output qubit of the constructed system, is flipped 
to |1) in these two cases). Otherwise W continues by performing the quantum rewinding procedure. The precise 
description of the protocol of W is given in Figure Q] It is easy to see that this protocol is exactly implementable 
using only the Hadamard and classical reversible transformations (the protocol includes intermediate measurement, 
which can be postponed until the very end of the protocol via standard technique that only uses classical reversible 
transformations) . 

Now we analyze the protocol. Our analysis is similar to the proof of Lemma 3.3 in Ref. [KKMV09] (which is 
based on the ideas in Refs. HMW05llWat09bl '). 

Let ni n it be the projection onto the all-zero state (i.e., the state in which all the qubits in (B, 0, R, S) are in 
state |0), which is denoted by |0)(b i o,r,S)) an d let n acc be the projection onto states in which the qubit in O is in 

2 Actually, it is sufficient for our proof that c — s > 1 /2 9 for some polynomially bounded function q : Z + — > N. 
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Verifier's Protocol for Achieving Perfect Completeness 

1. Receive an m(|x|)-bit string w and an integer k in {1, . . . , 2 / d :r l)} expressed by an /(|x|)-bit string as witness. 
Reject if k/2 1 ^ < c(\x\). 

2. Perform the following unitary transformation Q over the qubits in (B, 0, R, S). 

2.1 Apply the Hadamard transformations to all the qubits in B and S, and apply V XjW to the qubits in R. 

2.2 Apply the bit-flip to the qubit in either when B contains and the content of R would result in 
acceptance in the original system, or when B contains 1 and the content of S viewed as an integer in 
{l,...,2 J (l x D}is greater than k. 

3. Do the following steps (quantum rewinding): 

3.1 Accept if contains 1, and continue otherwise. 

3.2 Invert Step 2. That is, apply Qt to (B, 0, R, S). 

3.3 Perform the phase-flip (i.e., multiply —1 in phase) if all the qubits in (B, 0, R, S) are in state |0). 

3.4 Perform the same operations as in Step 2. That is, apply Q to (B, 0, R, S). 

3.5 Accept if contains 1, and reject otherwise. 



Figure 1: Verifier's protocol for achieving perfect completeness. Note that the conditional phase flip can be exactly 
achieved using {Hadmard, Toffoli, NOT} by preparing an ancilla qubit |0) into the state ^ (|0) — |1)) by the 
application of a NOT followed by a Hadamard, and then performing a conditional NOT on that qubit. 

state |1). Let Q be the unitary transformation induced by the actions in Step 2. Conditioned on W not rejecting in 

ii 1 1 2 

Step 1, the probability of being accepted in Step 3.1 can be written as p x>w ,k = 1 1 n acc Q| 0) (b,o,r,S) 1 1 • This implies 
that the matrix M = ni n i t (5^n acc Qrii n it is expressed as 

M = Ilinit Q f n acc QTIinit = Px,iu,fc|0)(0|(B,O,R,S) = Px,w,k^-imt, 

since 

ninitQ^IfaccQllinit = |0)( BjO) R j S) ((0|(B,O,R,S)Q t n acc Q|0)( BjO) R j S)) (0|(B,O,R,S) 
ii 1 1 2 

= ||n aC cQ|0)(B,O,R,S)|| |0)v°l(B,O,R,S)- 

Define the unnormalized states \4>q), \(/>i), \ipo), and by 

\4>o) = n acc Q|0) ( B,O,R,S), I'M = n rc j(5|0) (B ,O,R,S) 5 |V>0> = ^mitQM^o}, IV'l) = nmegalQ^o), 

where nin ega i is the projection onto states orthogonal to |0)( B ,o,R,S) an d n rc j is that onto states in which the qubit 
in is in state 1 0) . 

First, we analyze the acceptance probability of W when the claimed k satisfies k > c(\x\) ■ 2 l ^ x ^ (i.e., when 
W does not reject in Step 1). Clearly, W accepts in Step 3.1 with probability p x , w ,k- We analyze the prob- 
ability of being accepted in Step 3.5. For this purpose, it suffices to follow the changes of the unnormalized 
state \4>i) = n re jQ|0)(B,o,R,S) during the protocol when W continues in Step 3.1. Since 

IV'o) = n in itQ t n acc Q|o)(B,o,R,s) = n init (5 t n acc (5rii n it|o)(B,o,R,s) = a ^|o)(b,o,r,s) = Px,w,k\ty(&,o,R,s), 
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the statd_j just after Step 3.2 is 

bS.U.K.b! K c' 

1 



Q t n re jQ|o}( Bi o,R,s) = |o)(b,o,r,s) -QPwwi 



Px,w,k 

= 1 ~ Px ' w ' k \iM - M. 

Px,w,k 

As Ilinitl^o) = IV'o) an d riinitl^i) = 0, the controlled phase-flip in Step 3.3 changes the state to 
_l^P^ m _ ^ = _ l-2 Px , w , k m _ + ^ 

Px,w,k Px,w,k 

= "(I - 2Px,w,k)\0)(B,O,R,S) ~ Q f |0o)- 

Using <3|0)(b,o,r,S) = l^o) + |</>i)> one can see that the state just after Step 3.4 is 

-(1 - 2p :riWifc )Q|0)( B ,O,R,S) - \4>o) = -( 2 - 2Px,w,k)\<fro) - (1 - 1Px,v),k)\<t>l)- 

Thus, the probability of being accepted in Step 3.5 is 

(2 - 2p 2 . iU , iA .) 2 |||0 o )|| 2 = 4p x>V3>k (l -p X)Wik ) 2 - 
Hence, the acceptance probability p acc of W when the claimed k satisfies k > c(\x\) ■ 2 l ^ x ^ is given by 

Pace Px,w,k ^Px,w,k{^ Px,w,k) ■ 
II 1 1 2 

Now we calculate p XjWtk = \ \ Il^cQ \ 0) (b,o,R,S) || ■ Notice that 

Q|0)( B ,o,R,S) = 7 =^=(|0) B |0)o(|0)|xo)) R E l*>s 
Vl z e{i,...,2 ; (M)} 

+ |0) B |l)o(|l)|xi» R E l z )s 

zS{l,...,2 I OI)} 

+ |1)b|0)o(|0)|xo) + |1)|xi)) r E Ms 

ze{i,...,k} 

+ |i)b|i>o(|o)|xo) + |i>|xi)) r E l z )s)' 

2e{&+i,...,2 ; Cl^l)} 

where we denote the state V x u ,|0)r just before the final measurement in the original system by |0)|xo) + |l)|Xl)> 
assuming that the first qubit in R was the output qubit in the original system. Since || |xi) || 2 = k X)W /2 l ^ x ^ , one can 
see that 

_1 k x , w 1 ggj - k _ 1 1 
Px,w,k 2 "2KW) + 2" 2'(M) ~2 2'(l^l)+ l1 x,w) ' 
Now we are ready to verify the completeness and soundness of the constructed protocol. 
For the completeness, one can take w to be any string that achieves k XyW /2 l ^ x ^ > c(\x\) (recall that the accep- 
tance probability of V X)W is k XjW /2 l ^ x ^), and k to be k x w for the chosen w. Then clearly W does not reject in 
Step 3.1 and we have p X:Wj k = 1/2, which implies p acc = 1. Thus, W accepts x with certainty. 



3 The norm of this state is yjl — p x , w ,k- Alternatively, one could carry out the analysis with a conventional normalized state, in which 
case one would obtain the conditional probability of accepting in Step 3.5 given that Step 3.1 does not accept. This conditional probability 
is one in the case where p x ,w,k = 1/2. 
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For the soundness, note that one has only to consider the case where k/2 l ^ x ^ > c(\x\), as otherwise W rejects 
with certainty in Step 3.1. Since for any w the acceptance probability k x w /2 l " x u of V x>w is at most s(|x| ), 

iw s \ - p^WW) • 2 ,,M > - .(W) ■ *<") = 5 - sMzjM . 

Noting that the function f(p) = p + 4p(l — p) 2 is monotone increasing over [0, 1/2] and /(1/2) = 1, one can see 
that p acc is at most 

/i _ c(\x\) - s(\x\) \ = i _ c(N)- a (|x|) /i _ c(|x|)- s (N) \ A c(H)- s (M r 2 

A 2 2 / 2 2 V 2 2 A 2 2 



i(l-(c(|x|)- S (|x|)))(l+(l + C (|x|)-,(|x|)) : 



2 

which is smaller than f(l/2) = 1. Thus the soundness follows, which completes the proof. □ 



4 Concluding Remarks 

This paper has proved that QCMA = QCMA X holds under any gate set with which the Hadamard and arbitrary 
classical reversible transformations can be exactly implemented. As already mentioned, this result is not quantumly 
relativizing. It should be noted, however, that it is classically relativizing (i.e., QCMA A = QCMA^ for any 
classical oracle A). Here we assume the standard model of classical oracles in computational complexity theory, in 
particular that the answer of A for any query is deterministic. This fact can be easily seen: for any specific choice of 
A, the acceptance probability of the verifier can still be represented in the form of k/2 l ^ x ^ since A is deterministic. 

A natural question to ask is whether one can extend our argument to the QMA case to show that 
QMA = QMA X . There seem to be at least two obstacles for this. First, the maximum acceptance probability 
of the verifier (even in the honest Merlin case) cannot be expressed with a polynomial number of bits in general. 
This is because the maximum acceptance probability in the QMA system corresponds to the largest eigenvalue of a 
certain appropriate matrix, which might only be describable as a zero of some polynomial with exponentially many 
terms. Second, even if one knew its probability as an algebraic number, it is not easy to boost the probability to one 
via amplitude amplification or quantum rewinding - without an explicit description of the initial state we do not see 
a way to perform a perfect reflection about the initial state, which seems to be necessary (see, e.g., Ref. INWZ091). 
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